Restarting neutron openvswitch while having broadcast/multicast traffic going into br-tun makes a broadcast storm over the tunnel network
Bug #1421232 reported by
Miguel Angel Ajo
This bug affects 3 people
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
neutron |
Fix Released
|
Critical
|
Miguel Angel Ajo | ||
Juno |
Fix Released
|
Critical
|
Miguel Angel Ajo |
Bug Description
As a result from the following bug (br-tun being reset across agent restarts) https:/
If in addition, we have a broadcast or multicast packet jumping into
br-tun from br-int, openvswitch will bring down the network creating
a broadcast storm.
It's necessary to have at least 3 nodes connected via tunnels:
The packets will go:
NodeA -> NodeB -> NodeC -> NodeA
Or more amplified if we had more nodes.
This would be avoided if we re-created br-tun in fail-mode "secure" at least, because that doesn't introduce the "NORMAL" default switching rule
on the switch at creation (origin of this problem.)
Changed in neutron: | |
importance: | Undecided → High |
milestone: | none → kilo-3 |
Changed in neutron: | |
status: | Fix Committed → Fix Released |
Changed in neutron: | |
milestone: | kilo-3 → 2015.1.0 |
To post a comment you must log in.
Fabio Di Nitto , Jiri Benc (openvswitch) found the issue, nailed down the problem,
and got how to reproduce it:
Stop neutron- openvswitch- agent (maintenance), restart openvswitch...., and be a bit unlucky...